ANSWERS |ALREADY GRADED A+
Which of the following security program areas would you find practitioners who train and/
or advise Original Classification Authorities in the application of the process for making
classification determinations?
A. Information Security
B. Physical Security
C. Personnel Security
D. Industrial Security - ✔ANSWER A. Information Security
Which of the following security program areas would you find practitioners working with a
facility's Antiterrorism Officer to deploy defensive measures designed to reduce the facility's
vulnerability from terrorist attacks?
A. Information Security
B. Physical Security
C. Personnel Security
D. Industrial Security - ✔ANSWER B. Physical Security
Which role leads the day-to-day defense?
A Authorizing Official (AO)
B US Cyber Command (USCYBERCOM)
C Security personnel
D DoD Chief Information Officer (CIO) - ✔ANSWER B
The cybersecurity attributes are confidentiality, integrity, availability, authentication, and:
A Validity
,B Non-repudiation
C Architecture
D Stability - ✔ANSWER B
True or false? Cybersecurity is important so that risk is eliminated.
True
False - ✔ANSWER False
Select ALL of the correct responses. What are the Risk Management Framework (RMF) steps
designed to mitigate risk?
A Categorize System
B Select Security Controls
C Implement Security Controls
D Assess Security Controls - ✔ANSWER B&C
What activities occur in Step 4 of the Risk Management Framework (RMF), Assess Security
Controls?
A Develop, plan, and approve Security Assessment Plan
B Prepare the Security Assessment Report (SAR)
C Conduct remediation actions on non-compliant security controls
D All of the above - ✔ANSWER D
Select ALL of the correct responses. What are all cybersecurity attributes susceptible to?
A Vulnerabilities
B Threats
C Disclosure
D Authorization - ✔ANSWER A&B
, Select ALL of the correct responses. Which of the following are cybersecurity skill standards
needed
by security personnel?
A Identify and manage all cybersecurity concepts
B Explain their role in protecting DoD's information systems
C Identify fundamental cybersecurity concepts that are related to the protection of classified
and
controlled unclassified information
D Conduct assessment and evaluation of all IT systems - ✔ANSWER B&C
Which steps of the Risk Management Framework (RMF) are designed to evaluate risk?
A. Assess Security Controls, Monitor Security Controls, Categorize System
B. Assess Security Controls, Implement Security Controls, Authorize System
C. Implement Security Controls, Monitor Security Controls, Authorize System
D. Assess Security Controls, Monitor Security Controls, Authorize System - ✔ANSWER D
In which step of the Risk Management Framework (RMF) would you implement the
decommissioning strategy?
A. Step 3 - Implement security controls
B. Step 4 - Assess security controls
C. Step 5 - Authorize system
D. Step 6 - Monitor security controls - ✔ANSWER D
What evolving threats are attempts by hackers to damage or destroy a computer network or
system?
A. Insider Threat
B. Social Media